Itaú BBA in Europe
Cyber Security Specialist
Itaú BBA in EuropePortugal2 hours ago
Full-timeInformation Technology, Consulting

Are you interested in working in the FINANCIAL MARKETS?

We are looking for a Cyber Security Specialist to join our team.


Who are we?

Itaú BBA Europe is a banking subsidiary of Itaú Group, the largest banking institution in Brazil and in Latin America. We believe that talent and innovation flourish in a diverse and inclusive environment, so we are a Bank driven by diverse people, committed to generating value for our customers and our society. We want our employees, the Itubers, to feel welcomed to bring as much of their true selves to work as they like.

Therefore, we encourage all candidates to apply regardless of gender, race, disability, sexual orientation, and any other characteristic that could be subject to discrimination.

Our core values are: We don’t have all the answers • We have each other’s back • We treasure diversity • We are driven by results • We put the client first • We make choices and decisions • Ethics are non-negotiable

We are in constant transformation and looking for a self-motivated, proactive, and flexible Cyber Security Specialist to join our team in Lisbon.


What would be your key responsibilities?

As a Cyber Security Specialist, you will be responsible for developing and delivering a comprehensive information security and privacy program that covers systems, platforms, applications, and processes, as well as data in all formats. This includes establishing guidelines for information ownership and data classification.

You will also ensure effective Business Continuity and Crisis Management by maintaining, testing, and updating Business Impact Analyses, disaster recovery plans, and continuity plans, while preparing all required crisis documentation.

In addition, you will hold overall responsibility for physical security across the organization.

Typical activities and responsibilities will include:

Information Security

  • Elaborate a security strategy
  • Define and maintain security policies, processes and procedures (including identity and access management (AM) policies)
  • Lead Cyber Security Risk Management
  • Mapping and understanding of the IT threat landscape for the banking industry and ensure continued compliance with laws and applicable regulations o cyber incident response planning
  • Review and approve security settings (access profiles, authorizations, firewall rules, security-relevant settings)
  • Initiate security improvements by assessing current situation; evaluating trends; anticipating requirements
  • Develop and implement an ongoing risk assessment program targeting information security and privacy matters; recommend methods for vulnerability detection and remediation and oversee vulnerability testing
  • Determines security violations and inefficiencies by conducting periodic assessments and log reviews
  • Initiates upgrades system by implementing and maintaining security controls
  • Maintain and operate Data Loss Prevention environment (define and implement rules, monitor blocked mails 'web access, release blocked mails)
  • Conduct security awareness training to all personnel and enforce compliance
  • Close collaboration with Compliance and IT functions in the bank as well as Information Security function in the Head Office
  • Manage third parties involved in IT security, including potential vendor selection
  • Main contact and support for security assessments regarding outsourcing and data protection

Business Continuity Management/ Crisis Management

  • Define and maintain Business Continuity Management and Crisis Management policies
  • Leading the Business Continuity Management cycle: Business Impact Analysis, Business Continuity Management Concept as well as leading the relevant testing
  • Prude the necessary documentation for Crisis Management.

Physical Security

  • Primary contact for the alarm system
  • Contact with suppliers for maintaining the physical security
  • Management of physical access control


What are we looking for?

Technical skills:

  • Knowledge of all applicable laws, regulations and compliance frameworks to enforce compliance. Understanding of confidentiality issues and the law relating the them
  • Solid background in all areas of IT Security, Business Continuity Management and Physical Security
  • In-depth knowledge of technical environment; especially for security relevant aspects
  • Maintains technical knowledge by attending educational workshops and reviewing publications
  • Digital forensics, which means finding out what allowed an intrusion to occur so it can be prevented in the future
  • Data and information management, including classification, retention and destruction

General skills:

  • Attention to detail, analytical abilities and the ability to recognize trends in data
  • Policy Development and administration
  • A proactive approach with confidence to make decisions
  • A methodical and well-organized approach to work
  • Positive and flexible change-the-bank personality
  • Must be flexible and adaptable, able to deal with adversity and unexpected situations
  • Must take a pro-active approach and be a team player, fostering team building
  • Focus on internal clients with very strong communication skills, ability to communicate with both technical and non-technical employees
  • Communication skills and the ability to Interact effectively with a range of people
  • English

Background:

  • Bachelor degree in Computer Science, Cyber Security, Forensics computer or the similar
  • Postgraduate degree in Cyber Security Is desirable
  • Relevant experience with financial / banking industry in Switzerland

What can you expect?

  • Pemanent Contract;
  • Competitive compensation with eligibility for discretionary variable remuneration
  • Robust health insurance coverage
  • Hybrid work;
  • A dynamic, fast-paced, challenging and international working environment;
  • Development and growth opportunities to support you in your career


If you believe you are the right fit for this position, please send us your application!


Please note:

Only applications through LinkedIn will be considered and due to the high volumes of applications that we receive, we will only contact those candidates that we would like to invite to an interview.

Key Skills

Ranked by relevance